Hacker Releases More Democratic Party Documents
nytimes.com
nytimes.com
When we watch a good magician, they entertain us by using misdirection. Unfortunately, when the deep state and the media they control use misdirection it is not fun or entertaining, it is about getting the population to go along with policies against the public's interests, against the interests of peace and prosperity, etc.
>American intelligence officials said they are virtually certain that Russian intelligence officials were behind the attack.
... but there there isn't anything in the article to back it up. Why do these unnamed officials think this?
We're just supposed to trust them.
Doubt it. She'll probably advocate that only for herself and her Senate colleagues.
The problem of encryption is that it changes the relationship between government and individual in a way that has never been seen before. If a person is suspected of committing a crime the police have always had the ability to intercept mail, record calls, search property etc and obtain evidence. They can't do that now.
You can argue the pros/cons of this new world order. What you can't argue against is the natural inclination of many people to simply maintain the status quo.
The first is, as you say, previously you could intercept a suspect's mail and search their papers; with proper encryption that isn't possible.
The second is in the past the search process wouldn't scale to searching every citizen all the time. With e-mail, web traffic and smartphones, it becomes possible.
We can restore the status quo from 30 years ago for either one of those changes, but not for both.
The one big difference between bugging someone's home vs. encryption backdoor is one of scale, and I don't think citizens should so substantially yield their security so that the state can save money.
I think the natural inclination of voters isn't relevant just yet because privacy and encryption are so far down the list of topics of national salience, or topics to organize voters, that it doesn't register on anyone's political radar. If encryption or security backdoors are mentioned on the national stage, it will be entirely as a subtopic of only terrorism.
I to my girlfriend- how dare you cheat on me. You are texting Sam since a year.
My gf to me: How dare you breach my trust by looking at my phone? This doesn't count.
“It’s hard for me to imagine how just having a bunch of numbers, cellphones and emails would in any way affect the election,” he said. “It wasn’t totally unexpected.”
“Someone could cause a lot of damage if they were able to send emails out from a member’s account, but I’m not hearing that that’s a risk at this point.”
Me: I have yet to see a cryptographically signed e-mail from a politician, and without that, spoofing such a message would be almost trivial. Do they keep their cybersecurity well hidden from the public?
Do they have anything career ending or prosecutable, or do "the Russians" just enjoy watching Hillary dodge, duck, dip, dive, and dodge?
- Trump's manager, Paul Manafort, has done multimillion-dollar business deals with pro-Russian oligarchs and was a longtime adviser to the Russia-aligned Ukrainian president whose 2014 ouster triggered Russia’s intervention in Ukraine, a major source of tension between Russia and the United States as well as its NATO allies.
- On the campaign trail, Trump has called for a new partnership with Moscow, overhauling NATO, the allied military force seen as the chief protector of pro-Western nations near Russia
- Since the 1980s, Trump and his family members have made numerous trips to Moscow in search of business opportunities
https://www.washingtonpost.com/politics/inside-trumps-financ...
Hillary has plenty of ties to Russia, as shown by the nuclear deal in which the Clinton Global Initiative received $145M and Bill Clinton Received $500K for a speech. As part of the deal Hillary, as Secretary of State, reversed direction and approved the sale of uranium mining companies to Russia.
http://www.nytimes.com/2015/04/24/us/cash-flowed-to-clinton-...
I too am a little confused since, as you point out, Sec. Clinton has friendly dealings with Russia.
There is plenty of motivation elsewhere to do so. Russia would be a major loser given that Hillary would far more decisive and bold with her foreign policy decisions. Assange benefits because a Trump government would be more amenable to immunity negotiations. And Wikileaks benefits from all the publicity.
"Like many of Nixon’s actions, this particular transgression was born of paranoia. As the 1968 election approached, Nixon and his aides feared that Johnson would try to help the Democratic nominee—Vice President Hubert Humphrey—by staging an October surprise. When LBJ announced to the nation, just days before the balloting, that he was calling a halt in the bombing of North Vietnam to help fuel progress in ongoing peace talks, the Republicans thought their fears were realized. Anna Chennault, a Republican activist with ties to the South Vietnamese government, sent word to Saigon that it would get better terms if Humphrey lost and Nixon took office, the FBI would discover."
http://www.politico.com/magazine/story/2014/06/yes-nixon-scu...
There is no evidence of that given her past behavior and particularly with the Russians as evidenced by past decisions http://www.nytimes.com/2015/04/24/us/cash-flowed-to-clinton-... per tomohawk's post https://news.ycombinator.com/item?id=12281559
http://www.nytimes.com/2016/07/28/us/politics/donald-trump-r...
Edit: People will down vote but not reply because they don't have a leg to stand on. It's not like Hillary is a privacy hawk[1], turnabout is fair play where I'm from.
[0]https://www.washingtonpost.com/opinions/im-a-lawyer-speciali...
[1]http://arstechnica.com/tech-policy/2015/12/hillary-clinton-w...
https://guccifer2.wordpress.com/2016/08/12/guccifer-2-0-hack...
https://news.ycombinator.com/item?id=12279977
get flag-killed immediately where as this somewhat colored article gets on the frontpage?
Keep in mind that Guccifer2 isn't a lone hacker as initially portrayed. Guccifer2 is a cover for APT-28/APT-29 (GRU). So if anything then this leak has to be considered for what it was: A foreign nation meddling in the elections of another. Current Russian meddling fits seamlessly into Russia's bigger doctrine on Cyber Defense Strategies [0][1][2][3][4]
[0] https://www.crowdstrike.com/blog/bears-midst-intrusion-democ...
[1] https://www.blackhat.com/docs/us-16/materials/us-16-Geers-Cy...
[2] https://blog.valbonne-consulting.com/2016/08/06/smartcitiess...
[3] http://www.naa.mil.lv/~/media/NAA/AZPC/Publikacijas/PP%2002-...
[4] http://www.ifri.org/en/publications/enotes/proliferation-pap...
PS: there is now also guccifer 3.0 :-) and I'm hitting reload like crazy https://guccifer3.wordpress.com/
EDIT: anyone interested in this subject also look for 'Gerasimov Doctrine' for a thrilling read.
How do you know? The NYT keeps using the passive voice ("believed to be tied to the Russian intelligence") or saying that some unnamed "American intelligence officials" told them so. Even when they name the officials, they don't say how they determined it.
COZY BEAR (also referred to in some industry reports as CozyDuke or APT 29) is the adversary group that last year successfully infiltrated the unclassified networks of the White House, State Department, and US Joint Chiefs of Staff. In addition to the US government, they have targeted organizations across the Defense, Energy, Extractive, Financial, Insurance, Legal, Manufacturing Media, Think Tanks, Pharmaceutical, Research and Technology industries, along with Universities. Victims have also been observed in Western Europe, Brazil, China, Japan, Mexico, New Zealand, South Korea, Turkey and Central Asian countries. COZY BEAR’s preferred intrusion method is a broadly targeted spearphish campaign that typically includes web links to a malicious dropper. Once executed on the machine, the code will deliver one of a number of sophisticated Remote Access Tools (RATs), including AdobeARM, ATI-Agent, and MiniDionis. On many occasions, both the dropper and the payload will contain a range of techniques to ensure the sample is not being analyzed on a virtual machine, using a debugger, or located within a sandbox. They have extensive checks for the various security software that is installed on the system and their specific configurations. When specific versions are discovered that may cause issues for the RAT, it promptly exits. These actions demonstrate a well-resourced adversary with a thorough implant-testing regime that is highly attuned to slight configuration issues that may result in their detection, and which would cause them to deploy a different tool instead. The implants are highly configurable via encrypted configuration files, which allow the adversary to customize various components, including C2 servers, the list of initial tasks to carry out, persistence mechanisms, encryption keys and others. An HTTP protocol with encrypted payload is used for the Command & Control communication.
FANCY BEAR (also known as Sofacy or APT 28) is a separate Russian-based threat actor, which has been active since mid 2000s, and has been responsible for targeted intrusion campaigns against the Aerospace, Defense, Energy, Government and Media sectors. Their victims have been identified in the United States, Western Europe, Brazil, Canada, China, Georgia, Iran, Japan, Malaysia and South Korea. Extensive targeting of defense ministries and other military victims has been observed, the profile of which closely mirrors the strategic interests of the Russian government, and may indicate affiliation with Главное Разведывательное Управление (Main Intelligence Department) or GRU, Russia’s premier military intelligence service. This adversary has a wide range of implants at their disposal, which have been developed over the course of many years and include Sofacy, X-Agent, X-Tunnel, WinIDS, Foozer and DownRange droppers, and even malware for Linux, OSX, IOS, Android and Windows Phones. This group is known for its technique of registering domains that closely resemble domains of legitimate organizations they plan to target. Afterwards, they establish phishing sites on these domains that spoof the look and feel of the victim’s web-based email services in order to steal their credentials. FANCY BEAR has also been linked publicly to intrusions into the German Bundestag and France’s TV5 Monde TV station in April 2015.
At DNC, COZY BEAR intrusion has been identified going back to summer of 2015, while FANCY BEAR separately breached the network in April 2016. We have identified no collaboration between the two actors, or even an awareness of one by the other. Instead, we observed the two Russian espionage groups compromise the same systems and engage separately in the theft of identical credentials. While you would virtually never see Western intelligence agencies going after the same target without de-confliction for fear of compromising each other’s operations, in Russia this is not an uncommon scenario. “Putin’s Hydra: Inside Russia’s Intelligence Services”, a recent paper from European Council on Foreign Relations, does an excellent job outlining the highly adversarial relationship between Russia’s main intelligence services – Федеральная Служба Безопасности (FSB), the primary domestic intelligence agency but one with also significant external collection and ‘active measures’ remit, Служба Внешней Разведки (SVR), the primary foreign intelligence agency, and the aforementioned GRU. Not only do they have overlapping areas of responsibility, but also rarely share intelligence and even occasionally steal sources from each other and compromise operations. Thus, it is not surprising to see them engage in intrusions against the same victim, even when it may be a waste of resources and lead to the discovery and potential compromise of mutual operations. """"
https://www.crowdstrike.com/blog/bears-midst-intrusion-democ...
* broadly targeted spearphising attack
* both groups were constantly going back into the environment to change out their implants, modify persistent methods, move to new Command & Control channels and perform other tasks to try to stay ahead of being detected.
Let's put that into context tho': it happens all the time and no-one bats an eyelid. When Obama came over and said we should vote Bremain, lots of people were annoyed at his presumption, but no-one considered it that big a deal.
US meddling in foreign politics goes back decades (and the same message enforced using different umbrellas, e.g.: in Latin America it was the War on Drugs. In the Arab world the message is the same only the strategy was slightly redefined to another more plausible (if only perceived) threat (radical Islamism).
Are you referring to Mark Galeotti? I'd like to read an analysis written by a Russian scholar on this, would you have any sources?
The only one that has to gain from this hacks is Hillary : she looks like the poor victim of the evil Russians and their agent Trump.
I didn't flag it, but my guess is that it was flagged because if you don't look to carefully it seams to be a rehash of the old leaks, or a crackpot site with fake documents. The nytimes.com articles have more credibility and are better written.
In this cases you can vouch for the article to unkill it, and also email the mods hn@ycombinator.com. In some cases they remove the flags and reset the time counter of the article.